Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Security Operation Engineer (Red Team)

Full-time

Bybit

About Us

Established in 2018, Bybit is one of the world’s leading cryptocurrency exchanges and digital financial platforms, serving over 80 million users across more than 200 countries and regions. Powered by world-class technology and a user-first mindset, Bybit delivers a seamless ecosystem across trading, payments, wealth management, custody, institutional services, and Web3 — connecting users to the future of digital finance.

Our core values define how we build. We listen, care and improve to create products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we foster a high-performance and fast-moving environment where talent is empowered to drive real impact at the global scale. Supported by 24/7 multilingual customer service and a strong commitment to innovation, we are shaping the future of finance through technology, collaboration, and bold execution.

Today, Bybit is recognized as one of the most trusted and transparent platforms in the digital asset industry, continuing to expand its global presence while building the infrastructure for the next generation of financial services.

Job responsibilities Red-blue confrontation drill
  • Responsible for developing and executing penetration testing, red-blue confrontation, and practical attack and defense drills that simulate real attack scenarios, identifying potential security risks in enterprise networks, applications, cloud environments, work networks, and core business systems.
  • Lead or participate in red-blue confrontation exercises to evaluate the defense team's ability in attack detection, alarm analysis, traceability analysis, emergency response, and recovery.
  • Based on the real attack chain design exercise scenario, covering extranet breakthrough, web vulnerability exploitation, phishing entrance, privilege escalation, lateral movement, Data Discovery, privilege maintenance, and defense bypass stages.
  • Combining the attack review results, promote the continuous optimization of security detection rules, response processes, asset governance, and security base lines.
Attack Surface Analysis and Threat Research
  • Identify enterprise network exposure, internet assets, cloud assets, APIs, supply chain components, and third-party access risks, evaluate attack paths, and provide mitigation recommendations.
  • Monitor and collect threat intelligence, track vulnerability exploitation trends, APT attack methods, red team toolchain changes, and apply them to enterprise attack and defense exercises.
  • Combining business scenarios to model attack paths and discover feasible attack chains from external exposure surfaces to core assets.
  • Tracking AI-related security risks, including security issues in large-scale model applications, RAG systems, Agent systems, plug-in/tool calls, MCP services, AI code generation, and automated workflows.
AI Security and Large Model Attack and Defense
  • Responsible for the security evaluation of AI applications, intelligent agent systems, RAG Knowledge Base, AI Agent toolchain and model services within the enterprise.
  • Research and verify large-scale model-related attack techniques, including Prompt Injection, Jailbreak, Indirect Prompt Injection, data leakage, unauthorized tool invocation, security risks caused by model illusions, RAG poisoning, vector library pollution, sensitive information leakage, etc.
  • Design AI red team test cases and evaluation framework, and conduct security verification on model input and output, context isolation, permission control, tool call chain, and data access boundary.
  • Participate in the construction of AI security protection plan, including prompt word security policy, content security detection, tool call permission constraints, sensitive data desensitization, audit tracking, Agent sandbox isolation and security evaluation benchmark construction.
  • Explore the application of AI in red team automation, vulnerability analysis, attack path planning, PoC verification, and report generation, and promote the platformization, automation, and intelligence of attack and defense capabilities.
Tool and platform development
  • Develop and optimize Red Team-specific tools and scripts for vulnerability mining, information collection, privilege escalation, lateral movement, credential analysis, traffic disguise, defense bypass, and automated report generation.
  • Study and validate new attack techniques, and simulate real threats in combination with enterprise business scenarios.
  • Build or participate in the construction of automated security evaluation platform, integrated vulnerability scanning, audio fingerprint recognition, asset mapping, PoC verification, attack path analysis, AI Agent arrangement and other capabilities.
  • Combining LLM/Agent technology to explore automated penetration testing, intelligent vulnerability verification, code security auditing, and red team task scheduling.
Security evaluation and reporting
  • Conduct security evaluations on critical business systems, internal networks, cloud environments, work end points, API services, and AI applications, and output detailed technical reports, attack paths, impact analysis, and repair recommendations.
  • Output AI security evaluation reports for AI applications, including attack examples, risk levels, exploitable paths, data leakage risks, permission boundary issues, and governance recommendations.
  • Assist in improving enterprise security protection mechanisms, promote optimization of WAF, EDR, SIEM, NDR, HIDS, zero trust, identity permissions, and log auditing capabilities.
  • Transform attack and defense discovery into security detection rules, base line specifications, develop security requirements, and continuous governance mechanisms.
XFN collaboration
  • Collaborate with the blue team, security operation, infrastructure, R & D, algorithm, data, and business teams to complete attack review, vulnerability repair, detection rule optimization, and security capability building.
  • Provide security support to other departments of the enterprise, including emergency response drills, development security consulting, AI application pre-launch security review, and security training.
  • Participate in the security design review of AI applications and security products, and promote the advance of security capabilities in R & D, testing, and Pushonline.
Job requirements Basic skills
  • Proficient in basic knowledge of cyber security, including TCP/IP protocol, network architecture, identity authentication, access control, principles and configurations of common security devices.
  • Proficient in common attack techniques and red team toolchains, such as Sliver, Cobalt Strike, NPS, Burp Suite, Metasploit, Nmap, Masscan, Frida, Impacket, etc.
  • Familiar with mainstream operating systems Windows, Linux, macOS security mechanism, log system, permission model and common use.
  • Familiar with common web frameworks, API architectures, microservice structures, containers, and security risks in Kubernetes environments.
Offensive and defensive technical capabilities
  • Proficient in penetration testing and red team processes, including information collection, vulnerability scanning, vulnerability exploitation, intranet penetration, privilege escalation, lateral movement, privilege maintenance, Data Discovery, and trace cleaning.
  • Familiar with the working principles and adversarial methods of enterprise-level security products, including WAF, EDR, SIEM, NDR, HIDS, zero-trust gateway, bastion host, and identity authentication system.
  • Possess independent vulnerability analysis and PoC writing capabilities, able to reproduce, verify, and assess the impact of public vulnerabilities and 0day/1day risks.
  • Proficient in one or more programming/scripting languages, such as Python, Go, Bash, PowerShell, JavaScript, etc., with experience in tool development and automation platform construction.
AI security capabilities
  • Familiar with the basic architecture of large-scale model applications, familiar with technical forms such as Prompt, RAG, Embedding, vector databases, Agent, Function Calling, MCP, and plugin systems.
  • Understand or practice AI security testing methods, including Prompt Injection, Jailbreak, RAG data poisoning, sensitive information leakage, unauthorized tool invocation, model output security, Agent permission escape, etc.
  • Able to design security test cases for AI applications, evaluate model input/output, context isolation, data boundaries, permission control, and tool invocation chain risks.
  • Experience in using AI to assist security work, including vulnerability analysis, code auditing, intelligence analysis, attack path planning, report generation, or automated testing.
  • Familiar with AI application security governance ideas, including model call auditing, prompt word security, sensitive data protection, content security detection, permission minimization, and sandbox isolation.
Experience requirements
  • More than 5 years of experience in red team, penetration testing, security research, or offensive and defensive exercises.
  • Candidates with experience in large-scale enterprise attack and defense drills, red-blue confrontation, HW/major support, cloud attack and defense, or intranet penetration are preferred.
  • Candidates with experience in AI security, large-scale model security, intelligent agent security, automated penetration testing platform or security tool platform construction are preferred.
  • Familiar with enterprise security construction system, able to promote defense capability, detection capability, and governance process optimization from an attack perspective.
Other capabilities
  • Priority will be given to those who hold security-related certifications such as ♀ P, OSCE, CISSP, CISP, CEH, CISSP, CCSP, etc.
  • Possess strong document writing and expression abilities, able to output high-quality technical reports, review documents, attack chain analysis, and security construction plans.
  • Possess good problem analysis ability, learning ability, teamwork ability, and stress resistance.
  • Be sensitive to new technologies, new Attack Surfaces, and new tools, and be able to proactively research and share internally.
Bonus points
  • Familiar with Cloud Computing Platform security and cloud attack and defense technologies, such as AWS, Azure, GCP, Tencent Cloud, Alibaba Cloud, etc.
  • Familiar with Kubernetes, containers, Service Mesh, CI/CD, DevSecOps and supply chain security.
  • Possess experience in zero trust, secure operation, threat hunting, Attack Surface management, and vulnerability management platform construction.
  • Familiar with MCP Server, AI Agent framework, RAG system, vector database, LLM API gateway, model security evaluation framework.
  • Experience in Automated Red Team, AI Penetration Testing, Intelligent Vulnerability Verification, Agent Orchestration, Security Knowledge Base or Security RAG System Construction.
  • Experience in vulnerability submission, CVE, technical articles, open source projects, topic sharing, or tool release in the security community.
  • Familiar with security frameworks such as MITRE ATT & CK, OWASP Top 10, OWASP LLM Top 10, NIST AI RMF, etc.
Why Join Us At Bybit, we are committed to fostering a supportive and enriching work environment. Our benefits include:
  • Study Growth Fund: We support your professional development and continuous learning.
  • Internal Events: Participate in regular team-building activities, workshops, and events designed to promote collaboration and innovation.
  • Global Collaboration: Be part of a diverse, international team, working alongside colleagues from around the world.
  • Career Advancement: Access opportunities for growth and advancement within a rapidly expanding global company.
  • Internal Mobility: Grow with us- Your long-term development is important to us. We offer internal job opportunities to help build your career path.
Vacancy posted 8 hours ago
Similar jobs that could be interesting for youBased on the Principal Security Operation Engineer (Red Team) in Malaysia vacancy
  •  ...users first. Backed by a global team of ambitious builders,...  ...platforms for the company's security system, covering areas such as...  ...desensitization, and secure operation platforms, continuously improving...  ...good system design skills and engineering thinking. Possess strong communication... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...Experience in developing performance testing platforms or chaos engineering platforms is a strong plus. Why Join Us At Bybit, we are committed... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...build scalable architectures on top of it. 4. Familiar with engineering tools such as Webpack and CI/CD pipelines; possesses product thinking... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...preferred 1. Proficient in NoSQL cache, message queue, search engines, such as Redis, Kafka, Elasticsearch, etc 1. Skilled in system... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...that put users first. Backed by a global team of ambitious builders, problem-solvers,...  ...services. Core Responsibilities Chaos Engineering Platform Architecture & Development (50%...  ...custom solutions), familiar with CRD / Operator development ~ Proficient in at least... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...users first. Backed by a global team of ambitious builders,...  ...technical initiatives Lead the engineering implementation of AI...  ...observability analysis, and AI-driven operations automation Proactively...  ...capabilities on system stability, security, cost, and compliance from an... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...financial services. Job Summary: Primarily responsible for security auditing and security governance of the company's platform systems... 
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...that put users first. Backed by a global team of ambitious builders, problem-solvers,...  ...Responsibilities: 1. Based on risk control operations needs, support risk monitoring, user...  ...control, marketing anti-fraud, account security, or fund security. 2. Proficient in SQL... 
    Full time
    Work experience placement

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...data transport protocols such as WebSocket and gRPC ~ Strong engineering discipline — clean code structure and a habit of conducting code... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...values define how we build. We listen, care and improve to create products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we foster a high-performance and fast-moving environment where talent is empowered... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...stability Participate in code reviews to ensure code quality and security In-Memory System Development Design and implement efficient... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...users first. Backed by a global team of ambitious builders,...  ...enabling Bybit to deploy and operate regulated financial services...  ...units. As a Senior DevOps Engineer for the Financial Cloud Toolchain...  ...management and supply chain security experience: content-addressable... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...that put users first. Backed by a global team of ambitious builders, problem-solvers,...  ...networks to support deposit and withdrawal operations for exchanges or Web3 platforms 2....  ...testing, and deployment; deliver high-quality engineering work 4. Write technical and system... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...that put users first. Backed by a global team of ambitious builders, problem-solvers, and...  ...into standardised workflows, rule-based engines, and configurable reusable product...  ...standardisation, and systematic reduction of manual operations — with scalable operations as the core... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  .... Job Responsibilities 1. Responsible for the deployment, operation, maintenance, upgrades, and daily management of the company's middleware... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...that put users first. Backed by a global team of ambitious builders, problem-solvers, and...  ...— Design and implement the orchestration engine, runtime, and core primitives; ensure the...  ...), customer service AI, code AI ~ AI security research: published work on prompt injection... 
    Principal
    Full time
    Contract work

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...architecture, and control measures of the company's information security management system to inspectors Prepare technical documents and... 
    Full time
    Local area
    Remote work

    Bybit

    Malaysia
    8 hours ago
  •  ...users first. Backed by a global team of ambitious builders,...  ...Building ~ Responsible for fund security across all business lines (e....  ...into the real-time decision engine for production launch. Continuously...  ..., compliance, and anti-fraud operations teams. Integrate machine... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  •  ...products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we...  ...maintenance of CRM systems — including ticketing, agent workspace, rule engine, workflow orchestration, IM, and AI-assisted modules Tackle... 
    Principal
    Full time

    Bybit

    Malaysia
    8 hours ago
  • ~ Project Cum Energy Engineer Responsibilities: Part of the project team to plan and execute various projects in FFM Group (based in Pulau Indah)....  ...advantage): Knowledge and understanding of the operating of AC motors (efficiency, inverters, soft-starters... 
    For contractors
    Work experience placement
    Work at office

    TWO95 International, Inc

    Malaysia
    more than 2 months ago
  • $84k

    His looking for a QA Automation Tester for an Health industry Role : QA Automatiom tester Location: Bangsar South Experience: 3-4 years experience Salary: below rm 7000 only Requirements: selenium or Katalon experience needed. ~ open to expats and locals...
    Permanent employment
    Contract work
    Local area
    Immediate start
    Free visa

    TWO95 International, Inc

    Malaysia
    more than 2 months ago
  •  ...create better management, low production costs and improve the quality of products. To liaise with Process Engineering, Production, Quality and Logistic team to ensure the volume and quality of the engine. To be responsible for engineering requirement to meet IATF... 
    Contract work

    SD Guthrie Berhad

    Malaysia
    more than 2 months ago
  •  ...the perfect job for you! We are looking for a hardworking and enthusiastic Talent Acquisition Speciaiist to join our ambitious HR team and heip us drive top talent to our company via innovative candidate attraction strategies. Talent Acquisition Speciaiist Responsibilities... 

    TWO95 International, Inc

    Malaysia
    more than 2 months ago
  •  ...Let's talk about the team: The Business Analyst, Order Creation within Global Customer Service plays a critical role in aligning...  ...Model. While being deeply aware of regional specificities and operational constraints, the role must support the progressive convergence... 
    Local area
    Immediate start
    Shift work

    Resmed

    Malaysia
    more than 2 months ago
  •  ...research and development. KLA focuses more than average on innovation and we invest 15% of sales back into R&D. Our expert teams of physicists, engineers, data scientists and problem-solvers work together with the world’s leading technology providers to accelerate the... 
    Work experience placement
    Flexible hours

    KLA

    Malaysia
    more than 2 months ago
  •  ...analysis across i-Gaming products and initiatives. Act as the primary liaison between stakeholders, product owners, and development teams. Gather, analyze, and document business requirements, user stories, and acceptance criteria. Translate complex business needs... 

    TWO95 International, Inc

    Malaysia
    more than 2 months ago
  •  ...ABOUT US We’re the world’s leading provider of secure financial messaging services, headquartered in Belgium. We are the way the world...  ...where people can bring their full selves and ideas to the team, so if you are excited about this role, we encourage you to apply... 
    Overseas

    Swift

    Malaysia
    more than 2 months ago
  •  ...We are a team to design, develop, maintain, and improve software...  ...include backend service and operation development, proposing architectural...  ...stack for long-term engineering initiatives. Manage documentation...  ...in handling scalability, security and performance optimization... 

    Crypto.com

    Malaysia
    more than 2 months ago
  •  ...closely with stakeholders, fellow engineers, designer, software tester....  ...organization and to other teams at Company - Propose and implement...  ...that consider scale, security, reliability and cost - Design...  ...reference for users by writing operating instructions - Document and share... 
    Flexible hours

    TWO95 International, Inc

    Malaysia
    more than 2 months ago
  •  ...users first. Backed by a global team of ambitious builders,...  ...Collaborate with product and engineering teams to define feature needs...  ...in crypto custody, blockchain operations, or digital asset servicing...  ...a plus Highly organized, security-minded, self-motivated, and proactive... 
    Full time

    Bybit

    Malaysia
    8 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Security Operation Engineer (Red Team). Be the first to apply!